Back to Database
Status published
Critical
CVE-2023-24838
HGiga PowerStation - Information Leakage
Vulnerability Description
HGiga PowerStation has a vulnerability of Information Leakage. An unauthenticated remote attacker can exploit this vulnerability to obtain the administrator's credential. This credential can then be used to login PowerStation or Secure Shell to achieve remote code execution.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-24838
Credits & Attribution
No credits recorded in the NVD database.
More from HGiga
View All →CVE-2025-3364
HGiga PowerStation - Chroot Escape
Medium
6.7
CVE-2025-3363
HGiga iSherlock - OS Command Injection
Critical
9.8
CVE-2025-3362
HGiga iSherlock - OS Command Injection
Critical
9.8
CVE-2025-3361
HGiga iSherlock - OS Command Injection
Critical
9.8
CVE-2025-2150
HGiga C&Cm@il - Stored Cross-Site Scripting
Medium
5.4
Affected Vendor
HGiga
View all reports →Affected Software
PowerStation
Vulnerable Versions:
unspecified
Timeline
Official Publish:
March 27th, 2023
Last Modified:
February 19th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H